Transcript

A wafrn woot (post) by @tinker@infosec.exchange saying “Microsoft Authenticator needs me to validate with Authenticator in order to log in with Authenticator to use it to authenticate another app with Authenticator. Here is the app telling me to open itself to validate itself with itself. #infosec #iHateComputers” It has a screenshot showing the microsoft authenticator app.

    • Trainguyrom@reddthat.com
      link
      fedilink
      English
      arrow-up
      2
      ·
      10 months ago

      Microsoft accounts support the open TOTP standard for rolling 2FA codes, so there’s tons of apps that support storing TOTP codes

      • Rin@lemm.ee
        link
        fedilink
        English
        arrow-up
        2
        ·
        10 months ago

        Issue is that my work has some kind of bullshit set up which doesn’t make it purely totp

        • Trainguyrom@reddthat.com
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          10 months ago

          There’s so many tunables for M365 account requirements (and thats not even touching on third party security integrations like Duo) I’m not shocked